CVE-2003-0637

Novell iChain 2.2 before Support Pack 1 uses a shorter timeout for a non-existent user than a valid user, which makes it easier for remote attackers to guess usernames and conduct brute force password guessing.

Scoring

CVSS base score
0.04
EPSS probability
0.95%
Published
2003-08-02
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs